4.2

CVE-2017-6770

Cisco IOS 12.0 through 15.6, Adaptive Security Appliance (ASA) Software 7.0.1 through 9.7.1.2, NX-OS 4.0 through 12.0, and IOS XE 3.6 through 3.18 are affected by a vulnerability involving the Open Shortest Path First (OSPF) Routing Protocol Link State Advertisement (LSA) database. This vulnerability could allow an unauthenticated, remote attacker to take full control of the OSPF Autonomous System (AS) domain routing table, allowing the attacker to intercept or black-hole traffic. The attacker could exploit this vulnerability by injecting crafted OSPF packets. Successful exploitation could cause the targeted router to flush its routing table and propagate the crafted OSPF LSA type 1 update throughout the OSPF AS domain. To exploit this vulnerability, an attacker must accurately determine certain parameters within the LSA database on the target router. This vulnerability can only be triggered by sending crafted unicast or multicast OSPF LSA type 1 packets. No other LSA type packets can trigger this vulnerability. OSPFv3 is not affected by this vulnerability. Fabric Shortest Path First (FSPF) protocol is not affected by this vulnerability. Cisco Bug IDs: CSCva74756, CSCve47393, CSCve47401.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Cisco ≫ Ios Xe Version 3.6.0e
Cisco ≫ Ios Xe Version 3.6.1e
Cisco ≫ Ios Xe Version 3.6.2e
Cisco ≫ Ios Xe Version 3.6.4e
Cisco ≫ Ios Xe Version 3.6.5ae
Cisco ≫ Ios Xe Version 3.6.5e
Cisco ≫ Ios Xe Version 3.7.0e
Cisco ≫ Ios Xe Version 3.7.1e
Cisco ≫ Ios Xe Version 3.7.2e
Cisco ≫ Ios Xe Version 3.7.3e
Cisco ≫ Ios Xe Version 3.8.0e
Cisco ≫ Ios Xe Version 3.8.0ex
Cisco ≫ Ios Xe Version 3.8.1e
Cisco ≫ Ios Xe Version 3.8.2e
Cisco ≫ Ios Xe Version 3.8.3e
Cisco ≫ Ios Xe Version 3.8.4e
Cisco ≫ Ios Xe Version 3.9.0e
Cisco ≫ Ios Xe Version 3.9.0s
Cisco ≫ Ios Xe Version 3.9.1s
Cisco ≫ Ios Xe Version 3.9.2s
Cisco ≫ Ios Xe Version 3.10.0s
Cisco ≫ Ios Xe Version 3.10.1s
Cisco ≫ Ios Xe Version 3.10.2s
Cisco ≫ Ios Xe Version 3.10.2ts
Cisco ≫ Ios Xe Version 3.10.3s
Cisco ≫ Ios Xe Version 3.10.4s
Cisco ≫ Ios Xe Version 3.10.5s
Cisco ≫ Ios Xe Version 3.10.6s
Cisco ≫ Ios Xe Version 3.10.7s
Cisco ≫ Ios Xe Version 3.10.8as
Cisco ≫ Ios Xe Version 3.10.8s
Cisco ≫ Ios Xe Version 3.11.0s
Cisco ≫ Ios Xe Version 3.11.2s
Cisco ≫ Ios Xe Version 3.11.3s
Cisco ≫ Ios Xe Version 3.11.4s
Cisco ≫ Ios Xe Version 3.12.0s
Cisco ≫ Ios Xe Version 3.12.1s
Cisco ≫ Ios Xe Version 3.12.2s
Cisco ≫ Ios Xe Version 3.12.3s
Cisco ≫ Ios Xe Version 3.12.4s
Cisco ≫ Ios Xe Version 3.13.0s
Cisco ≫ Ios Xe Version 3.13.1s
Cisco ≫ Ios Xe Version 3.13.2s
Cisco ≫ Ios Xe Version 3.13.4s
Cisco ≫ Ios Xe Version 3.13.5s
Cisco ≫ Ios Xe Version 3.13.6as
Cisco ≫ Ios Xe Version 3.13.6s
Cisco ≫ Ios Xe Version 3.18.1sp
Cisco ≫ Nx-os Version base
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.69% 0.741
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 4.2 1.6 2.5
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:N
NIST 4 4.9 4.9
AV:N/AC:H/Au:N/C:P/I:P/A:N
CWE-20 Improper Input Validation

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.

http://www.securityfocus.com/bid/100005
Third Party Advisory
VDB Entry
http://www.securitytracker.com/id/1039005
Third Party Advisory
VDB Entry
http://www.securitytracker.com/id/1039006
Third Party Advisory
VDB Entry
http://www.securitytracker.com/id/1039007
Third Party Advisory
VDB Entry
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170727-ospf
Vendor Advisory